New Java Exploit Fetches $5,000 Per Buyer — Krebs on Security

New Java Exploit Fetches $5,000 Per Buyer — Krebs on Security

Less than 24 hours after Oracle patched a dangerous security hole in its Java software that was being used to seize control over Windows PCs, miscreants in the Underweb were already selling an exploit for a different and apparently still-unpatched zero-day vulnerability in Java, KrebsOnSecurity has learned.On Sunday, Oracle rushed out a fix for a critical bug in Java that had been folded into exploit kits, crimeware made to automate the exploitation of computers via Web browser vulnerabilities. On Monday, an administrator of an exclusive cybercrime forum posted a message saying he was selling a new Java 0day to a lucky two buyers. The cost: starting

Who influenced this selection?What is this?

What the influencers are saying

  1. Lee

    122.0 days ago

    New Java Exploit Fetches $5,000 Per Buyer http://t.co/YLVXIDVW

  2. CoreSecurity

    122.0 days ago

    New Java #zero-day vuln and exploit, less than 24hrs after Oracle fixed critical #security hole http://t.co/NuhIDZyL via @briankrebs

  3. Andrew Storms

    122.0 days ago

    @briankrebs is reporting on more #Java 0 days. http://t.co/sGpcvfnS #itsecurity

  4. briankrebs

    122.0 days ago

    Less than 24 hours after Oracle fixed a Java 0day, miscreants were selling another Java 0day in Java 7 Update 11 http://t.co/G3sw6620

  5. Dave Marcus

    122.0 days ago

    RT @grecs: RT @briankrebs: Less than 24 hours after Oracle fixed a Java 0day, another Java 0day in Java 7 Update 11 http://t.co/OmmJAxp0

  6. Avram Marius (d3v1l)

    122.0 days ago

    RT @briankrebs: New Java Exploit Fetches $5,000 Per Buyer http://t.co/4CLqbJHc

  7. grecs

    122.0 days ago

    RT @briankrebs: Less than 24 hours after Oracle fixed a Java 0day, another Java 0day in Java 7 Update 11 http://t.co/OmmJAxp0

  8. Panda Security

    122.0 days ago

    New Java Exploit Fetches $5,000 Per Buyer http://t.co/HGA2wrOZ via @briankrebs



Related Reading




InformationWeek encourages readers to engage in spirited, healthy debate, including taking us to task. However, InformationWeek moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. InformationWeek further reserves the right to disable the profile of any commenter participating in said activities.

Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.